get_input in adrotate.pm for Les VanBrunt AdRotate Pro 2.0 allows remote attackers to modify the database and possibly execute arbitrary commands via a SQL code injection attack.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Adrotate_pro | Les_vanbrunt | 2.0 (including) | 2.0 (including) |